@blaxel/telemetry
Blaxel SDK for TypeScript
Supply chain provenance
Status for the latest visible version.
Without SLSA provenance there is no cryptographic link between this tarball and the public source, so a manually published version cannot be tied back to a reviewed commit.
Maintainers
Keywords
Accepted risks
Findings the reviewer chose to accept rather than block on.
| Source | Rule | Reason | Accepted by | When |
|---|---|---|---|---|
| phantom-deps | phantom-dep:ai | AI (phantom-deps): AI SDK packages are peer/optional deps re-exported by this telemetry wrapper; phantom-dep is a stable false positive here. | ai | |
| phantom-deps | phantom-dep:@ai-sdk/groq | AI (phantom-deps): Same as above — peer dep pattern for this package. | ai | |
| phantom-deps | phantom-dep:@ai-sdk/google | AI (phantom-deps): Same as above — peer dep pattern for this package. | ai | |
| phantom-deps | phantom-dep:@ai-sdk/openai | AI (phantom-deps): Same as above — peer dep pattern for this package. | ai | |
| phantom-deps | phantom-dep:@ai-sdk/cerebras | AI (phantom-deps): Same as above — peer dep pattern for this package. | ai | |
| phantom-deps | phantom-dep:@ai-sdk/anthropic | AI (phantom-deps): Same as above — peer dep pattern for this package. | ai | |
| phantom-deps | phantom-dep:@opentelemetry/api-logs | AI (phantom-deps): OpenTelemetry packages are core to this telemetry library; phantom-dep is a false positive. | ai | |
| phantom-deps | phantom-dep:@opentelemetry/sdk-logs | AI (phantom-deps): Same as above. | ai | |
| phantom-deps | phantom-dep:@opentelemetry/sdk-trace-base | AI (phantom-deps): Same as above. | ai | |
| phantom-deps | phantom-dep:@opentelemetry/exporter-logs-otlp-http | AI (phantom-deps): Same as above. | ai |
Versions (showing 51 of 90)
| Version | Deps | Published |
|---|---|---|
| 3.0.5 | 19 / 5 | |
| 0.3.8 | 19 / 5 | |
| 0.3.7 | 19 / 5 | |
| 0.3.6 | 19 / 5 | |
| 0.3.5 | 19 / 5 | |
| 0.3.4 | 19 / 5 | |
| 0.3.3 | 19 / 5 | |
| 0.3.2 | 19 / 5 | |
| 0.3.1 | 19 / 5 | |
| 0.3.0 | 19 / 5 | |
| 0.2.95 | 19 / 5 | |
| 0.2.94 | 19 / 5 | |
| 0.2.93 | 19 / 5 | |
| 0.2.92 | 19 / 5 | |
| 0.2.91 | 19 / 5 | |
| 0.2.90 | 19 / 5 | |
| 0.2.89 | 19 / 5 | |
| 0.2.88 | 19 / 5 | |
| 0.2.87 | 19 / 5 | |
| 0.2.86 | 19 / 5 | |
| 0.2.85 | 19 / 5 | |
| 0.2.84 | 19 / 5 | |
| 0.2.83 | 19 / 5 | |
| 0.2.82 | 19 / 5 | |
| 0.2.81 | 19 / 5 | |
| 0.2.80 | 19 / 5 | |
| 0.2.79 | 19 / 5 | |
| 0.2.78 | 19 / 5 | |
| 0.2.77 | 19 / 5 | |
| 0.2.76 | 19 / 5 | |
| 0.2.75 | 19 / 5 | |
| 0.2.74 | 19 / 5 | |
| 0.2.73 | 19 / 5 | |
| 0.2.72 | 19 / 5 | |
| 0.2.55 | 19 / 5 | |
| 0.2.54 | 19 / 5 | |
| 0.2.53 | 19 / 5 | |
| 0.2.52 | 19 / 5 | |
| 0.2.51 | 19 / 5 | |
| 0.2.50 | 19 / 5 | |
| 0.2.49 | 19 / 5 | |
| 0.2.48 | 19 / 5 | |
| 0.2.47 | 19 / 5 | |
| 0.2.46 | 19 / 5 | |
| 0.2.45 | 19 / 5 | |
| 0.2.44 | 19 / 5 | |
| 0.2.43 | 19 / 5 | |
| 0.2.42 | 19 / 5 | |
| 0.2.41 | 19 / 5 | |
| 0.2.40 | 19 / 5 | |
| 0.2.39 | 19 / 5 |
v3.0.5
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v0.3.8
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v0.3.7
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v0.3.6
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v0.3.5
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v0.3.4
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v0.3.3
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v0.3.2
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v0.3.1
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v0.3.0
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v0.2.95
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.